5.5.1

Table Of Contents
Setting System Properties 11
You can set system properties to change the default Orchestrator behavior.
This chapter includes the following topics:
n
“Disable Access to the Orchestrator Client By Nonadministrators,” on page 111
n
“Disable Access to Workflows from Web Service Clients,” on page 112
n
“Setting Server File System Access for Workflows and JavaScript,” on page 113
n
“Set JavaScript Access to Operating System Commands,” on page 116
n
“Set JavaScript Access to Java Classes,” on page 117
n
“Set Custom Timeout Property,” on page 118
n
“Modify the Number of Objects a Plug-In Search Obtains,” on page 118
n
“Modify the Number of Concurrent and Pending Workflows,” on page 119
Disable Access to the Orchestrator Client By Nonadministrators
You can configure the Orchestrator server to deny access to the Orchestrator client to all users who are not
members of the Orchestrator administrator group.
By default, all users who are granted execute permissions can connect to the Orchestrator client. However,
you can limit access to the Orchestrator client to Orchestrator administrators by setting a system property in
the vmo.properties Orchestrator configuration file.
IMPORTANT If the vmo.properties configuration file does not contain this property, or if the property is set to
false, Orchestrator permits access to the Orchestrator client by all users.
Procedure
1 On the Orchestrator server system, navigate to the folder that contains configuration files.
Option Action
If you installed Orchestrator with
the vCenter Server installer
Go to
install_directory\VMware\Infrastructure\Orchestrator\app-
server\conf.
If you installed the standalone
version of Orchestrator
Go to install_directory\VMware\Orchestrator\app-server\conf.
If you downloaded and deployed
the virtual appliance
Go to /etc/vco/app-server/.
2 Open the vmo.properties configuration file in a text editor.
VMware, Inc.
111